Domain Security Services Using S/MIME draft-ietf-smime-domsec-04.txt William Ottaway DERA Malvern,UK IETF 47 Adelaide, Australia.

Slides:



Advertisements
Similar presentations
STUN Open Issues Jonathan Rosenberg dynamicsoft. Changes since -00 Answered UNSAF considerations –Still awaiting response from Leslie on whether they.
Advertisements

INRIA Rhône-Alpes - Planète research group 1 Security and RMT Protocols: TESLA I-D simple-auth I-D rmt-sec I-D IETF 69 th – Chicago meeting, July 2007.
Overview of draft-ietf-sidr-roa-format-01.txt Matt Lepinski BBN Technologies.
MPKI Interoperability I-D ChangeLog from -01 to -02 Jan 16, 2004 Masaki SHIMAOKA SECOM Trust.net.
6/1/20151 Digital Signature and Public Key Infrastructure Course:COSC Instructor:Professor Anvari Student ID: Name:Xin Wen Date:11/25/00.
CS470, A.Selcuk Security1 CS 470 Introduction to Applied Cryptography Instructor: Ali Aydin Selcuk.
Application of Attribute Certificates in S/MIME Greg Colla & Michael Zolotarev Baltimore Technologies 47 th IETF Conference Adelaide, March 2000.
CMS Advanced Electronic Signatures (CAdES) Target Category: Informational Intended to update and replace : RFC 3126 IETF Meeting Paris - August 2005 Denis.
Controller of Certifying Authorities PKI Technology - Role of CCA Assistant Controller (Technology) Controller of Certifying Authorities Ministry of Communications.
Warranty Certificate Extension draft-ietf-pkix-warranty-extn th IETF Meeting November 2002.
Chapter 13 Digital Signature
Cryptography 101 Frank Hecker
Applicability Statement v1.1 Feedback: DirectTrust May 5, 2015.
Csci5233 Computer Security1 Bishop: Chapter 10 Key Management: Digital Signature.
1 Workshop on algorithms and parameters for Electronic Signatures November 25, Brussels.
S/MIME and CMS Presentation for CSE712 By Yi Wen Instructor: Dr. Aidong Zhang.
CMS Interoperability Matrix Jim Schaad Soaring Hawk Security.
S/MIME Freeware Library IETF S/MIME WG 13 December 2000 Getronics Government Solutions.
16.1 Copyright © The McGraw-Hill Companies, Inc. Permission required for reproduction or display. Chapter 16 Security at the Application Layer: PGP and.
MASS / DKIM BOF IETF – Paris 4 Août 2005 dkim.org  mipassoc.org/mass IETF – Paris 4 Août 2005 dkim.org  mipassoc.org/mass MIPA.
Key Management. Session and Interchange Keys  Key management – distribution of cryptographic keys, mechanisms used to bind an identity to a key, and.
July 27, 2009IETF NEA Meeting1 NEA Working Group IETF 75 Co-chairs: Steve Hanna
XML Encryption, XML Signature, and Derived Keys: Suggestion For a Minor Addition Magnus Nyström RSA.
IETF 65, Dallas, TX1 Introduction to SSP Jim Fenton 22 March 2006.
Michael Myers VeriSign, Inc.
July 16, Diameter EAP Application (draft-ietf-aaa-eap-02.txt) on behalf of...
Comments on draft-ietf-pkix-scvp-19.txt IETF Meeting Paris - August 2005 Denis Pinkas
CMC and PKI4IPSEC Jim Schaad. Requirements Issues What does MAY really mean What does SHOULD really mean Requirements on Admin Peer Requirements on structure.
“Trust me …” Policy and Practices in PKI David L. Wasley Fall 2006 PKI Workshop.
RADEXT WG IETF 91 Rechartering. Why? Current charter doesn’t allow us to take on new work that is waiting in the queue Has an anachronistic Diameter entanglement.
XMPP WG Discussion IETF 57, Vienna Peter Saint-Andre.
Manifests (and Destiny?) Stephen Kent BBN Technologies.
S/MIME (Secure/Multipurpose Internet Mail Extensions) security enhancement to MIME – original Internet RFC822 was text only – MIME provided.
Slide #1 Nov 6 – 11, 2005XCON WG IETF54 Conference Package Extensions draft-levin-xcon-conference-package-ext-00 by Orit Levin The Discussion Starter.
Overview of draft-ietf-sidr-roa-00.txt Steve Kent BBN Technologies.
CCSDS Security/DTN Status 11/6/2015 DENNIS IANNICCA CCSDS GRC CHARLES SHEEHE CCSDS GRC POC 1.
Slide title In CAPITALS 50 pt Slide subtitle 32 pt RTSP draft-ietf-mmusic-rfc2396bis-10 Magnus Westerlund Co-auhtors: Henning Schulzrinne, Rob Lanphier,
Draft-ietf-sidr-roa-format draft-ietf-sidr-arch Matt Lepinski BBN Technologies.
40 Minutes Left.
App End-to-End Security Requirements Group Name: SEC WG4 Source: Phil Hawkes, Qualcomm, Meeting Date:
Format Information !. Information v Contact the formatist early. Be sure to get on a list. v Discuss programs used: Word, WordPerfect, Excel, etc., and/or.
Minutes Left:
Multicast Routing Optimization Juan-Carlos Zúñiga Luis M. Contreras Carlos J. Bernardos Seil Jeon Younghan Kim MULTIMOB WG, July
S/MIME Working Group Status Russ Housley November 2002 PLEASE SIGN THE BLUE SHEET.
Traceroute Storage Format and Metrics draft-niccolini-ippm-storetraceroutes-03 Saverio Niccolini, Sandra Tartarelli, Juergen Quittek Network Laboratories,
SEED Overview ‘Use of the SEED Encryption Algorithm in CMS’ November 11, 2003 Jongwook Park, KISA
SCVP-28 Tim Polk November 8, Current Status Draft -27 was submitted in June ‘06 –AD requested a revised ID 8/11 –No related discussion on list –Editors.
Multiple Signatures in CMS Russ Housley IETF 66, Montreal, Canada.
DAY 20: ACCESS CHAPTERS 5, 6, 7 Larry Reaves October 28,
Bing Liu (speaker), Sheng WG, ietf96, July 2016
Direct Data Placement (DDP) over Reliable Transports
SIP Extension for Multilevel Precedence and Preemption (MLPP)
Authenticated Identity
RADEXT WG RADIUS Attribute Guidelines
Dan Brown, Certicom Research November 10, 2004
Alan Johnston Justin Uberti John Yoakum Kundan Singh November 4, 2015
Cryptography and Network Security
Jim Schaad Soaring Hawk Security
Misc. Security Items.
S/MIME T ANANDHAN.
Sanjay Wadhwa Juniper Networks
Glen Zorn Cisco Systems
Cryptography and Network Security
Text Section 2.3 Pages
Class 6 Secured Transactions, Fall, 2018 Perfection: Debtor’s Name
(free certificate not available)
STIR WG IETF-100 PASSPorT Extension for Resource-Priority Authorization (draft-ietf-stir-rph-01) November, 2017 Ray P. Singh, Martin Dolly, Subir Das,
Jim Schaad August Cellars
MUSIC HIGH SCHOOL - ELECTRONIC PIANO – Unit 6
Cryptography and Network Security
Presentation transcript:

Domain Security Services Using S/MIME draft-ietf-smime-domsec-04.txt William Ottaway DERA Malvern,UK IETF 47 Adelaide, Australia.

Minor changes zDOMSEC signatures are now added by encapsulation only (Used to allow parallel signatures). –Allows order of third party signature application to be known. –More secure. zSection four re-written to aid understanding.

Issues from last WG zISSUES From minutes :- “Jim Schaad recommended that the domain name should be exactly matched. Jim also pointed out that RFC 2630 states that the content type should be id-data when there are no signers of a signedData object.”

Issue 1 Domain Naming Conventions zWe have decided to keep the original naming rules – E.g. Originator :- Legal domain names are :- zMust always rely on CA to police naming conventions.

Issue 2 eContentType should be id-data zAdded text to the case when no originator signature is present to state that the eContentType will be id-data as specified in CMS. zHowever, the eContent will contain the unsigned message instead of being left empty as suggested in CMS (section 2). –Allows the DOMSEC signature to cover the message which doesn’t have an originator signature.

What’s Next zObtain OID for id-signatureType. zSubmit for last call.